123
返回列表 发新帖
楼主: Jerry.Lin
收起左侧

[病毒样本] 【05.24】#VirusPackage 17x + Modified Samples

[复制链接]
ELOHIM
发表于 2018-5-25 08:41:55 | 显示全部楼层
540923555 发表于 2018-5-25 08:41
我的WD结果和你差好多

我再测试一遍。
莫非微软加白了?
lqgeren
发表于 2018-5-25 08:49:00 | 显示全部楼层
eset endpoint 6.6+ 5月24
Samples(10/10) + M(9/10) = Total(19/20)
M中3.exe未报毒

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
XZ8SM7Sx0bVkoUV
发表于 2018-5-25 10:21:28 | 显示全部楼层
火绒

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
小飞侠.net
发表于 2018-5-26 09:42:13 | 显示全部楼层
本帖最后由 小飞侠.net 于 2018-5-26 10:22 编辑

             X-Sec Antivirus ---(Windows 10 Creators Update(Redstone 4)....1803):
Basic Info:
---------------------
Database Version: 2018.05.24.01
Program Version: 2.1.1.0
Heuristic Engine: Enabled
Cloud Engine: Enabled
Enhanced Mode: Disabled
Backup Before Resolve: Yes
Resolve Threats: Scan only
Scan Priority: Normal
---------------------
Targets:
---------------------
C:\Users\Admin\Desktop\AVtest100\Virus17xObfuscator 0524
---------------------
2018/05/26 10:20:58 Threat Detected: C:\Users\Admin\Desktop\AVtest100\Virus17xObfuscator 0524\Virus17x 0524\Modified Samples\(10).exe -- [Cloud] Cloud:Trojan.Win32.Injector
2018/05/26 10:20:59 Threat Detected: C:\Users\Admin\Desktop\AVtest100\Virus17xObfuscator 0524\Virus17x 0524\Modified Samples\(11).exe -- [Cloud] Cloud:Trojan.Win32.Crypted
2018/05/26 10:21:00 Threat Detected: C:\Users\Admin\Desktop\AVtest100\Virus17xObfuscator 0524\Virus17x 0524\Modified Samples\(12).exe -- [Cloud] Cloud:Trojan.Win32.Emotet
2018/05/26 10:21:00 Threat Detected: C:\Users\Admin\Desktop\AVtest100\Virus17xObfuscator 0524\Virus17x 0524\Modified Samples\(13).exe -- [Cloud] Cloud:Trojan.Win32.Emotet
2018/05/26 10:21:00 Threat Detected: C:\Users\Admin\Desktop\AVtest100\Virus17xObfuscator 0524\Virus17x 0524\Modified Samples\(14).exe -- [Cloud] Cloud:Trojan.Win32.Generic
2018/05/26 10:21:01 Threat Detected: C:\Users\Admin\Desktop\AVtest100\Virus17xObfuscator 0524\Virus17x 0524\Modified Samples\(15).exe -- [Cloud] Cloud:Suspicious.Win32.Generic
2018/05/26 10:21:01 Threat Detected: C:\Users\Admin\Desktop\AVtest100\Virus17xObfuscator 0524\Virus17x 0524\Modified Samples\(16).exe -- [Cloud] Cloud:Trojan.Win32.Injector
2018/05/26 10:21:04 Threat Detected: C:\Users\Admin\Desktop\AVtest100\Virus17xObfuscator 0524\Virus17x 0524\Modified Samples\(1).exe -- [Cloud] Cloud:Trojan.Win32.Infostealer
2018/05/26 10:21:11 Threat Detected: C:\Users\Admin\Desktop\AVtest100\Virus17xObfuscator 0524\Virus17x 0524\Modified Samples\(2).exe -- [Cloud] Cloud:Trojan.Win32.Crypted
2018/05/26 10:21:16 Threat Detected: C:\Users\Admin\Desktop\AVtest100\Virus17xObfuscator 0524\Virus17x 0524\Modified Samples\(3).exe -- [Cloud] Cloud:Trojan.Win32.LokiBot
2018/05/26 10:21:19 Threat Detected: C:\Users\Admin\Desktop\AVtest100\Virus17xObfuscator 0524\Virus17x 0524\Modified Samples\(17).scr -- [Cloud] Cloud:Trojan.Win32.Injector
2018/05/26 10:21:21 Threat Detected: C:\Users\Admin\Desktop\AVtest100\Virus17xObfuscator 0524\Virus17x 0524\Modified Samples\(4).exe -- [Cloud] Cloud:Trojan.Win32.Generic
2018/05/26 10:21:21 Threat Detected: C:\Users\Admin\Desktop\AVtest100\Virus17xObfuscator 0524\Virus17x 0524\Modified Samples\(6).exe -- [Cloud] Cloud:Trojan.Win32.LokiBot
2018/05/26 10:21:22 Threat Detected: C:\Users\Admin\Desktop\AVtest100\Virus17xObfuscator 0524\Virus17x 0524\Modified Samples\(7).exe -- [Cloud] Cloud:Trojan.Win32.Generic
2018/05/26 10:21:23 Threat Detected: C:\Users\Admin\Desktop\AVtest100\Virus17xObfuscator 0524\Virus17x 0524\Modified Samples\(5).exe -- [Cloud] Cloud:Trojan.Win32.Generic
2018/05/26 10:21:23 Threat Detected: C:\Users\Admin\Desktop\AVtest100\Virus17xObfuscator 0524\Virus17x 0524\Modified Samples\(8).exe -- [Cloud] Cloud:Trojan.Win32.Generic
2018/05/26 10:21:23 Threat Detected: C:\Users\Admin\Desktop\AVtest100\Virus17xObfuscator 0524\Virus17x 0524\Modified Samples\(9).exe -- [Cloud] Cloud:Trojan.Win32.Generic
2018/05/26 10:21:24 Threat Detected: C:\Users\Admin\Desktop\AVtest100\Virus17xObfuscator 0524\Virus17x 0524\Samples\(10).exe -- [Cloud] Cloud:Trojan.Win32.Injector
2018/05/26 10:21:24 Threat Detected: C:\Users\Admin\Desktop\AVtest100\Virus17xObfuscator 0524\Virus17x 0524\Samples\(11).exe -- [Cloud] Cloud:Trojan.Win32.Crypted
2018/05/26 10:21:25 Threat Detected: C:\Users\Admin\Desktop\AVtest100\Virus17xObfuscator 0524\Virus17x 0524\Samples\(12).exe -- [Cloud] Cloud:Trojan.Win32.Emotet
2018/05/26 10:21:25 Threat Detected: C:\Users\Admin\Desktop\AVtest100\Virus17xObfuscator 0524\Virus17x 0524\Samples\(13).exe -- [Cloud] Cloud:Trojan.Win32.Emotet
2018/05/26 10:21:26 Threat Detected: C:\Users\Admin\Desktop\AVtest100\Virus17xObfuscator 0524\Virus17x 0524\Samples\(14).exe -- [Cloud] Cloud:Trojan.Win32.Generic
2018/05/26 10:21:26 Threat Detected: C:\Users\Admin\Desktop\AVtest100\Virus17xObfuscator 0524\Virus17x 0524\Samples\(15).exe -- [Cloud] Cloud:Suspicious.Win32.Generic
2018/05/26 10:21:27 Threat Detected: C:\Users\Admin\Desktop\AVtest100\Virus17xObfuscator 0524\Virus17x 0524\Samples\(16).exe -- [Cloud] Cloud:Trojan.Win32.Injector
2018/05/26 10:21:31 Threat Detected: C:\Users\Admin\Desktop\AVtest100\Virus17xObfuscator 0524\Virus17x 0524\Samples\(1).exe -- [Cloud] Cloud:Trojan.Win32.Infostealer
2018/05/26 10:21:38 Threat Detected: C:\Users\Admin\Desktop\AVtest100\Virus17xObfuscator 0524\Virus17x 0524\Samples\(2).exe -- [Cloud] Cloud:Trojan.Win32.Crypted
2018/05/26 10:21:44 Threat Detected: C:\Users\Admin\Desktop\AVtest100\Virus17xObfuscator 0524\Virus17x 0524\Samples\(3).exe -- [Cloud] Cloud:Trojan.Win32.LokiBot
2018/05/26 10:21:46 Threat Detected: C:\Users\Admin\Desktop\AVtest100\Virus17xObfuscator 0524\Virus17x 0524\Samples\(17).scr -- [Cloud] Cloud:Trojan.Win32.Injector
2018/05/26 10:21:48 Threat Detected: C:\Users\Admin\Desktop\AVtest100\Virus17xObfuscator 0524\Virus17x 0524\Samples\(4).exe -- [Cloud] Cloud:Trojan.Win32.Generic
2018/05/26 10:21:49 Threat Detected: C:\Users\Admin\Desktop\AVtest100\Virus17xObfuscator 0524\Virus17x 0524\Samples\(5).exe -- [Cloud] Cloud:Trojan.Win32.Generic
2018/05/26 10:21:49 Threat Detected: C:\Users\Admin\Desktop\AVtest100\Virus17xObfuscator 0524\Virus17x 0524\Samples\(6).exe -- [Cloud] Cloud:Trojan.Win32.LokiBot
2018/05/26 10:21:50 Threat Detected: C:\Users\Admin\Desktop\AVtest100\Virus17xObfuscator 0524\Virus17x 0524\Samples\(7).exe -- [Cloud] Cloud:Trojan.Win32.Generic
2018/05/26 10:21:50 Threat Detected: C:\Users\Admin\Desktop\AVtest100\Virus17xObfuscator 0524\Virus17x 0524\Samples\(8).exe -- [Cloud] Cloud:Trojan.Win32.Generic
2018/05/26 10:21:50 Threat Detected: C:\Users\Admin\Desktop\AVtest100\Virus17xObfuscator 0524\Virus17x 0524\Samples\(9).exe -- [Cloud] Cloud:Trojan.Win32.Generic


瑞星---(Windows 10 Creators Update(Redstone 4)....1803):云引擎(开)RDM+引擎(开)   

                瑞星反恶软引擎命令行扫描器(社区交流版)                 


编译于:Sep 22 2017   15:07:50

提示:
  - 本工具供社区交流使用,请勿用于其他用途
  - 本工具没有恶意软件删除、清除、隔离功能
  - 本工具包含开发中的新特性,结果仅供参考

* 命令行中的选项开关:-output-json -log=C:\瑞星RDM+引擎\ScanLog_180526101604.log
* 获取恶软签名库最新版本 ...
* 下载恶软签名库配置文件 ...
* 创建恶软签名库升级组件 ...
* 计算并下载增量文件 ...
* 升级恶软签名库 ...
* 恶软签名库升级成功
* 扫描目标 : (1) C:\Users\Admin\Desktop\AVtest100

* 加载恶软签名库: C:\瑞星RDM+引擎/malware.rmd
* 恶软签名库加载成功,发布序号为 4299
* 读取恶软签名库配置 ...
* 云辅助扫描组件初始化失败.
* 初始化引擎环境 ...
* 初始化引擎环境 ...
* 初始化引擎环境 ...
* 初始化引擎环境 ...
* 初始化引擎环境 ...
* 初始化引擎环境 ...
* 初始化引擎环境 ...
* 初始化引擎环境 ...
扫描开始: Sat May 26 10:16:18 2018

{"filename":"C:\\Users\\Admin\\Desktop\\AVtest100\\SmallVirus9x 0521.zipx","type":"scan"}
{"filename":"C:\\Users\\Admin\\Desktop\\AVtest100\\Virus17xObfuscator 0524\\Virus17x 0524\\Modified Samples\\(14).exe","infect":{"engine":"sha1","signature":"c2hhMToemlXHwmPhgdxPGlxzST+n4qw3+w","threat":"Trojan.Crypto!8.364"},"type":"scan"}
{"filename":"C:\\Users\\Admin\\Desktop\\AVtest100\\Virus17xObfuscator 0524\\Virus17x 0524\\Modified Samples\\(1).exe","infect":{"engine":"sha1","signature":"c2hhMTp3+VIrCBHNtTw7pr9CA7/CAfPkcg","threat":"Trojan.Kryptik!8.8"},"type":"scan"}
{"filename":"C:\\Users\\Admin\\Desktop\\AVtest100\\Virus17xObfuscator 0524\\Virus17x 0524\\Modified Samples\\(10).exe","infect":{"engine":"sha1","signature":"c2hhMToEvpUGqG6y+Fcf4iZ1c/IYOrPmLA","threat":"Backdoor.Generic!8.CE"},"type":"scan"}
{"filename":"C:\\Users\\Admin\\Desktop\\AVtest100\\Virus17xObfuscator 0524\\Virus17x 0524\\Modified Samples\\(13).exe","infect":{"engine":"sha1","signature":"c2hhMTowS7tyDVTFCQdVV7RMjhOp383T5Q","threat":"Trojan.Emotet!8.B95"},"type":"scan"}
{"filename":"C:\\Users\\Admin\\Desktop\\AVtest100\\Virus17xObfuscator 0524\\Virus17x 0524\\Modified Samples\\(16).exe","infect":{"engine":"sha1","signature":"c2hhMTqUnuSLJnoaBl8P7Do3lg4JMWPAWQ","threat":"Downloader.Agent!8.B23"},"type":"scan"}
{"filename":"C:\\Users\\Admin\\Desktop\\AVtest100\\Virus17xObfuscator 0524\\Virus17x 0524\\Modified Samples\\(11).exe","infect":{"engine":"sha1","signature":"c2hhMTqi3tT9HxaNNcy4oKhC69/VjHjt1A","threat":"Dropper.Generic!8.35E"},"type":"scan"}
{"filename":"C:\\Users\\Admin\\Desktop\\AVtest100\\Virus17xObfuscator 0524\\Virus17x 0524\\Modified Samples\\(12).exe","infect":{"engine":"sha1","signature":"c2hhMTpGrkrMhTn1XsFncSHbUqCbC4OR2w","threat":"Trojan.GenKryptik!8.AA55"},"type":"scan"}
{"filename":"C:\\Users\\Admin\\Desktop\\AVtest100\\Virus17xObfuscator 0524\\Virus17x 0524\\Modified Samples\\(15).exe","type":"scan"}
{"filename":"C:\\Users\\Admin\\Desktop\\AVtest100\\Virus17xObfuscator 0524\\Virus17x 0524\\Modified Samples\\(3).exe","infect":{"engine":"rdmk","signature":"cmRtazrMPk2RL5N94Hg8FvcA0uBR","threat":"Backdoor.Fynloski!8.1FD"},"type":"scan"}
{"filename":"C:\\Users\\Admin\\Desktop\\AVtest100\\Virus17xObfuscator 0524\\Virus17x 0524\\Modified Samples\\(7).exe","infect":{"engine":"sha1","signature":"c2hhMTqXQSgVqrFNOW9dxeqTCQoRZsx5gA","threat":"Dropper.Generic!8.35E"},"type":"scan"}
{"filename":"C:\\Users\\Admin\\Desktop\\AVtest100\\Virus17xObfuscator 0524\\Virus17x 0524\\Modified Samples\\(6).exe","infect":{"engine":"sha1","signature":"c2hhMTouCiy+uVKMFVUGO4O9G3Wj52QXiA","threat":"Trojan.Injector!8.C4"},"type":"scan"}
{"filename":"C:\\Users\\Admin\\Desktop\\AVtest100\\Virus17xObfuscator 0524\\Virus17x 0524\\Modified Samples\\(2).exe","infect":{"engine":"sha1","signature":"c2hhMToey3EW9F68bm62tvCUxr0z2QgcRA","threat":"Trojan.Injector!1.AFE3"},"type":"scan"}
{"filename":"C:\\Users\\Admin\\Desktop\\AVtest100\\Virus17xObfuscator 0524\\Virus17x 0524\\Modified Samples\\(17).scr","infect":{"engine":"sha1","signature":"c2hhMTpwpaeQbgKL7XtKv3kyVRiKYmf7IA","threat":"Trojan.Crypto!8.364"},"type":"scan"}
{"filename":"C:\\Users\\Admin\\Desktop\\AVtest100\\Virus17xObfuscator 0524\\Virus17x 0524\\Modified Samples\\(5).exe","infect":{"engine":"sha1","signature":"c2hhMTpkJDeuvWHPvLdt1uCC4PfOmfk4Pw","threat":"Downloader.Agent!8.B23"},"type":"scan"}
{"filename":"C:\\Users\\Admin\\Desktop\\AVtest100\\Virus17xObfuscator 0524\\Virus17x 0524\\Modified Samples\\(8).exe","infect":{"engine":"sha1","signature":"c2hhMTqi81V+vr9wCOMWMyM9ics+cQZniQ","threat":"Backdoor.Androm!8.113"},"type":"scan"}
{"filename":"C:\\Users\\Admin\\Desktop\\AVtest100\\Virus17xObfuscator 0524\\Virus17x 0524\\Modified Samples\\(9).exe","infect":{"engine":"sha1","signature":"c2hhMTrLNLaMRwvh0W5hkC/Nn8ers28tCw","threat":"Trojan.GenKryptik!8.AA55"},"type":"scan"}
{"filename":"C:\\Users\\Admin\\Desktop\\AVtest100\\Virus17xObfuscator 0524\\Virus17x 0524\\Samples\\(11).exe","infect":{"engine":"tfe","signature":"dGZlOgyYxns82N9h/Q","threat":"Dropper.Generic!8.35E"},"type":"scan"}
{"filename":"C:\\Users\\Admin\\Desktop\\AVtest100\\Virus17xObfuscator 0524\\Virus17x 0524\\Samples\\(14).exe","infect":{"engine":"rdmk","signature":"cmRtazqbY45WhcJAsj6cFG5fNonM","threat":"Trojan.Crypto!8.364"},"type":"scan"}
{"filename":"C:\\Users\\Admin\\Desktop\\AVtest100\\Virus17xObfuscator 0524\\Virus17x 0524\\Samples\\(15).exe","type":"scan"}
{"filename":"C:\\Users\\Admin\\Desktop\\AVtest100\\Virus17xObfuscator 0524\\Virus17x 0524\\Samples\\(1).exe","infect":{"engine":"sha1","signature":"c2hhMTo37SwMghfcj2yboWKebu+/RCYX3w","threat":"Trojan.Agent!8.B1E"},"type":"scan"}
{"filename":"C:\\Users\\Admin\\Desktop\\AVtest100\\Virus17xObfuscator 0524\\Virus17x 0524\\Samples\\(12).exe","infect":{"engine":"sha1","signature":"c2hhMTpsSA00ZbpfP7+TKBKyM4DYpxUgWg","threat":"Trojan.GenKryptik!8.AA55"},"type":"scan"}
{"filename":"C:\\Users\\Admin\\Desktop\\AVtest100\\Virus17xObfuscator 0524\\Virus17x 0524\\Samples\\(13).exe","infect":{"engine":"sha1","signature":"c2hhMToxj4LCGziRT5cKJ7N8BITO3p4vjw","threat":"Trojan.Emotet!8.B95"},"type":"scan"}
{"filename":"C:\\Users\\Admin\\Desktop\\AVtest100\\Virus17xObfuscator 0524\\Virus17x 0524\\Samples\\(10).exe","infect":{"engine":"sha1","signature":"c2hhMTo+Bumqwx1fsFiH27X8mSODfz9zTw","threat":"Backdoor.Generic!8.CE"},"type":"scan"}
{"filename":"C:\\Users\\Admin\\Desktop\\AVtest100\\Virus17xObfuscator 0524\\Virus17x 0524\\Samples\\(16).exe","infect":{"engine":"sha1","signature":"c2hhMTpEbxUSG6y6AN7Rf5eGeau8Ag/hjQ","threat":"Downloader.Generic!8.141"},"type":"scan"}
{"filename":"C:\\Users\\Admin\\Desktop\\AVtest100\\Virus17xObfuscator 0524\\Virus17x 0524\\Samples\\(3).exe","infect":{"engine":"sha1","signature":"c2hhMTrBeGQ/jP8pOCvWJo41kT6DSi6RGw","threat":"Backdoor.Fynloski!8.1FD"},"type":"scan"}
{"filename":"C:\\Users\\Admin\\Desktop\\AVtest100\\Virus17xObfuscator 0524\\Virus17x 0524\\Samples\\(5).exe","infect":{"engine":"sha1","signature":"c2hhMTofR+gWr4QKOtRPrihyPiBk8SqhaQ","threat":"Downloader.Agent!8.B23"},"type":"scan"}
{"filename":"C:\\Users\\Admin\\Desktop\\AVtest100\\Virus17xObfuscator 0524\\Virus17x 0524\\Samples\\(6).exe","infect":{"engine":"sha1","signature":"c2hhMTqi/8OtqyLCedYOfCYDVgCFIo8HFw","threat":"Trojan.Injector!8.C4"},"type":"scan"}
{"filename":"C:\\Users\\Admin\\Desktop\\AVtest100\\Virus17xObfuscator 0524\\Virus17x 0524\\Modified Samples\\(4).exe","infect":{"engine":"sha1","signature":"c2hhMTqnXdOXEKWCnQmgjSdQraXa6fbppA","threat":"Malware.Undefined!8.C"},"type":"scan"}
{"filename":"C:\\Users\\Admin\\Desktop\\AVtest100\\Virus17xObfuscator 0524.zipx","type":"scan"}
{"filename":"C:\\Users\\Admin\\Desktop\\AVtest100\\Virus17xObfuscator 0524\\Virus17x 0524\\Samples\\(4).exe","infect":{"engine":"sha1","signature":"c2hhMTpY7GlsZ19c27bFCIyLa5E5N1NNAg","threat":"Downloader.Zurgop!8.4BB"},"type":"scan"}
{"filename":"C:\\Users\\Admin\\Desktop\\AVtest100\\Virus17xObfuscator 0524\\Virus17x 0524\\Samples\\(17).scr","infect":{"engine":"sha1","signature":"c2hhMTrfv7kWNCBl/nBGjMQSiG8JGHJr1w","threat":"Trojan.Injector!8.C4"},"type":"scan"}
{"filename":"C:\\Users\\Admin\\Desktop\\AVtest100\\Virus17xObfuscator 0524\\Virus17x 0524\\Samples\\(2).exe","infect":{"engine":"sha1","signature":"c2hhMTpn14J4kcTflRmwswOCIuCUOr9h0g","threat":"Trojan.Injector!1.AFE3"},"type":"scan"}
{"filename":"C:\\Users\\Admin\\Desktop\\AVtest100\\Virus17xObfuscator 0524\\Virus17x 0524\\Samples\\(7).exe","infect":{"engine":"tfe","signature":"dGZlOgyKtPrladBy3Q","threat":"Dropper.Generic!8.35E"},"type":"scan"}
{"filename":"C:\\Users\\Admin\\Desktop\\AVtest100\\Virus17xObfuscator 0524\\Virus17x 0524\\Samples\\(9).exe","infect":{"engine":"sha1","signature":"c2hhMTqUJdhMbdMI8o3Hdx10mbOWIesFug","threat":"Trojan.GenKryptik!8.AA55"},"type":"scan"}
{"filename":"C:\\Users\\Admin\\Desktop\\AVtest100\\Virus17xObfuscator 0524\\Virus17x 0524\\Samples\\(8).exe","infect":{"engine":"sha1","signature":"c2hhMTpuOFwabWKScw+lLApYS4hA653Kzw","threat":"Backdoor.Androm!8.113"},"type":"scan"}

扫描结束: Sat May 26 10:16:20 2018

总扫描耗时: 0:1:893(m:s:ms)
总扫描对象: 42
总扫描文件: 36
总恶意文件: 32
有效检出率: 88.89%



Emsisoft Emergency Kit - 版本 2018.4
上次更新: 2018/5/26 8:52:31
用户帐号: TECLAST\Admin
电脑名称: TECLAST
操作系统版本: Windows 10x64

Emsisoft Emergency Kit 绿色免费版
(已开启)加入 Emsisoft 云、更新源:测试版
    Bitdefender(B)+Emsisoft(A) 双引擎

扫描设置:

扫描方式: 自定义扫描
对象: Rootkits, 内存, C:\Users\Admin\Desktop\AVtest100\Virus17xObfuscator 0524\

检测流氓软件(PUPs): On
扫描压缩包: On
扫描邮件存档: Off
ADS数据流: On
文件扩展名过滤: Off
直接磁盘访问: Off

扫描开始于:        2018/5/26 10:12:07
C:\Users\Admin\Desktop\AVtest100\Virus17xObfuscator 0524\Virus17x 0524\Modified Samples\(13).exe         发现风险: Trojan.GenericKD.30867392 (B) [krnl.xmd]
C:\Users\Admin\Desktop\AVtest100\Virus17xObfuscator 0524\Virus17x 0524\Modified Samples\(12).exe         发现风险: Trojan.GenericKD.30867398 (B) [krnl.xmd]
C:\Users\Admin\Desktop\AVtest100\Virus17xObfuscator 0524\Virus17x 0524\Modified Samples\(11).exe         发现风险: Trojan.GenericKD.30866142 (B) [krnl.xmd]
C:\Users\Admin\Desktop\AVtest100\Virus17xObfuscator 0524\Virus17x 0524\Modified Samples\(14).exe         发现风险: Trojan.GenericKD.30859678 (B) [krnl.xmd]
C:\Users\Admin\Desktop\AVtest100\Virus17xObfuscator 0524\Virus17x 0524\Modified Samples\(16).exe         发现风险: Trojan.GenericKD.30872445 (B) [krnl.xmd]
C:\Users\Admin\Desktop\AVtest100\Virus17xObfuscator 0524\Virus17x 0524\Modified Samples\(10).exe         发现风险: Gen:Variant.Razy.314175 (B) [krnl.xmd]
C:\Users\Admin\Desktop\AVtest100\Virus17xObfuscator 0524\Virus17x 0524\Modified Samples\(17).scr         发现风险: Trojan.Injector (A) [294011]
C:\Users\Admin\Desktop\AVtest100\Virus17xObfuscator 0524\Virus17x 0524\Modified Samples\(2).exe         发现风险: Trojan.Agent.CZLD (B) [krnl.xmd]
C:\Users\Admin\Desktop\AVtest100\Virus17xObfuscator 0524\Virus17x 0524\Modified Samples\(4).exe         发现风险: Trojan-Downloader.Zurgop (A) [294009]
C:\Users\Admin\Desktop\AVtest100\Virus17xObfuscator 0524\Virus17x 0524\Modified Samples\(1).exe         发现风险: Gen:Variant.Strictor.140344 (B) [krnl.xmd]
C:\Users\Admin\Desktop\AVtest100\Virus17xObfuscator 0524\Virus17x 0524\Modified Samples\(3).exe         发现风险: Trojan.GenericKD.30867393 (B) [krnl.xmd]
C:\Users\Admin\Desktop\AVtest100\Virus17xObfuscator 0524\Virus17x 0524\Modified Samples\(7).exe         发现风险: Trojan.GenericKD.30866114 (B) [krnl.xmd]
C:\Users\Admin\Desktop\AVtest100\Virus17xObfuscator 0524\Virus17x 0524\Modified Samples\(5).exe         发现风险: Trojan.GenericKD.30859530 (B) [krnl.xmd]
C:\Users\Admin\Desktop\AVtest100\Virus17xObfuscator 0524\Virus17x 0524\Modified Samples\(9).exe         发现风险: Trojan.GenericKD.30867385 (B) [krnl.xmd]
C:\Users\Admin\Desktop\AVtest100\Virus17xObfuscator 0524\Virus17x 0524\Modified Samples\(8).exe         发现风险: Trojan.GenericKD.30859169 (B) [krnl.xmd]
C:\Users\Admin\Desktop\AVtest100\Virus17xObfuscator 0524\Virus17x 0524\Modified Samples\(6).exe         发现风险: Gen:Variant.Zusy.286450 (B) [krnl.xmd]
C:\Users\Admin\Desktop\AVtest100\Virus17xObfuscator 0524\Virus17x 0524\Samples\(12).exe         发现风险: Trojan.GenericKD.30865205 (B) [krnl.xmd]
C:\Users\Admin\Desktop\AVtest100\Virus17xObfuscator 0524\Virus17x 0524\Samples\(11).exe         发现风险: Trojan.GenericKD.30866142 (B) [krnl.xmd]
C:\Users\Admin\Desktop\AVtest100\Virus17xObfuscator 0524\Virus17x 0524\Samples\(10).exe         发现风险: Gen:Variant.Razy.314175 (B) [krnl.xmd]
C:\Users\Admin\Desktop\AVtest100\Virus17xObfuscator 0524\Virus17x 0524\Samples\(15).exe         发现风险: Trojan.GenericKD.30866780 (B) [krnl.xmd]
C:\Users\Admin\Desktop\AVtest100\Virus17xObfuscator 0524\Virus17x 0524\Samples\(13).exe         发现风险: Trojan.GenericKD.30866139 (B) [krnl.xmd]
C:\Users\Admin\Desktop\AVtest100\Virus17xObfuscator 0524\Virus17x 0524\Samples\(1).exe         发现风险: Gen:Variant.Strictor.140344 (B) [krnl.xmd]
C:\Users\Admin\Desktop\AVtest100\Virus17xObfuscator 0524\Virus17x 0524\Samples\(14).exe         发现风险: Trojan.GenericKD.30859678 (B) [krnl.xmd]
C:\Users\Admin\Desktop\AVtest100\Virus17xObfuscator 0524\Virus17x 0524\Samples\(16).exe         发现风险: Trojan.GenericKD.30872698 (B) [krnl.xmd]
C:\Users\Admin\Desktop\AVtest100\Virus17xObfuscator 0524\Virus17x 0524\Samples\(4).exe         发现风险: Trojan-Downloader.Zurgop (A) [294009]
C:\Users\Admin\Desktop\AVtest100\Virus17xObfuscator 0524\Virus17x 0524\Samples\(17).scr         发现风险: Trojan.Injector (A) [294011]
C:\Users\Admin\Desktop\AVtest100\Virus17xObfuscator 0524\Virus17x 0524\Samples\(2).exe         发现风险: Trojan.GenericKD.30862877 (B) [krnl.xmd]
C:\Users\Admin\Desktop\AVtest100\Virus17xObfuscator 0524\Virus17x 0524\Samples\(3).exe         发现风险: Trojan.GenericKD.30865479 (B) [krnl.xmd]
C:\Users\Admin\Desktop\AVtest100\Virus17xObfuscator 0524\Virus17x 0524\Samples\(5).exe         发现风险: Trojan.GenericKD.30859530 (B) [krnl.xmd]
C:\Users\Admin\Desktop\AVtest100\Virus17xObfuscator 0524\Virus17x 0524\Samples\(6).exe         发现风险: Gen:Variant.Zusy.286450 (B) [krnl.xmd]
C:\Users\Admin\Desktop\AVtest100\Virus17xObfuscator 0524\Virus17x 0524\Samples\(7).exe         发现风险: Trojan.GenericKD.30866114 (B) [krnl.xmd]
C:\Users\Admin\Desktop\AVtest100\Virus17xObfuscator 0524\Virus17x 0524\Samples\(8).exe         发现风险: Trojan.GenericKD.30859169 (B) [krnl.xmd]
C:\Users\Admin\Desktop\AVtest100\Virus17xObfuscator 0524\Virus17x 0524\Samples\(9).exe         发现风险: Trojan.GenericKD.30867397 (B) [krnl.xmd]
C:\Users\Admin\Desktop\AVtest100\Virus17xObfuscator 0524\Virus17x 0524\Modified Samples\(15).exe         发现风险: Gen:Variant.Ursu.216120 (B) [krnl.xmd]

已扫描        1913
发现        34

扫描完成后:        2018/5/26 10:12:30
扫描时间:        0:00:23



ESET Smart Security Premium 64位(高级启发式(Y)+压缩文件(Y)+自解压加壳(Y)+DNA智能签名(Y)++(Windows 10 Creators Update(Redstone 4)....1803):

日志
正在扫描日志
检测引擎的版本: 17447P (20180525)
日期: 2018/5/26  时间: 10:05:09
已扫描的磁盘、文件夹和文件: C:\Users\Admin\Desktop\AVtest100\Virus17xObfuscator 0524
C:\Users\Admin\Desktop\AVtest100\Virus17xObfuscator 0524\Virus17x 0524\Modified Samples\(1).exe - MSIL/Kryptik.NAS 特洛伊木马 的变种 - 通过删除清除 [1]
C:\Users\Admin\Desktop\AVtest100\Virus17xObfuscator 0524\Virus17x 0524\Modified Samples\(10).exe - MSIL/Kryptik.NZA 特洛伊木马 的变种 - 通过删除清除 [1]
C:\Users\Admin\Desktop\AVtest100\Virus17xObfuscator 0524\Virus17x 0524\Modified Samples\(11).exe - MSIL/Kryptik.NCF 特洛伊木马 的变种 - 通过删除清除 [1]
C:\Users\Admin\Desktop\AVtest100\Virus17xObfuscator 0524\Virus17x 0524\Modified Samples\(12).exe - Win32/Kryptik.GHAR 特洛伊木马 的变种 - 通过删除清除 [1]
C:\Users\Admin\Desktop\AVtest100\Virus17xObfuscator 0524\Virus17x 0524\Modified Samples\(13).exe - Win32/Kryptik.GHAR 特洛伊木马 的变种 - 通过删除清除 [1]
C:\Users\Admin\Desktop\AVtest100\Virus17xObfuscator 0524\Virus17x 0524\Modified Samples\(14).exe - Win32/Kryptik.GHAL 特洛伊木马 的变种 - 通过删除清除 [1]
C:\Users\Admin\Desktop\AVtest100\Virus17xObfuscator 0524\Virus17x 0524\Modified Samples\(15).exe - Win32/TrojanDownloader.TrueBot.G 特洛伊木马 - 通过删除清除 [1]
C:\Users\Admin\Desktop\AVtest100\Virus17xObfuscator 0524\Virus17x 0524\Modified Samples\(16).exe > NSIS > Script.nsi - NSIS/TrojanDownloader.Agent.NXI 特洛伊木马 - 通过删除清除 [1]
C:\Users\Admin\Desktop\AVtest100\Virus17xObfuscator 0524\Virus17x 0524\Modified Samples\(17).scr - Win32/Injector.DYEY 特洛伊木马 的变种 - 通过删除清除 [1]
C:\Users\Admin\Desktop\AVtest100\Virus17xObfuscator 0524\Virus17x 0524\Modified Samples\(2).exe - Win32/Injector.DYEM 特洛伊木马 的变种 - 通过删除清除 [1]
C:\Users\Admin\Desktop\AVtest100\Virus17xObfuscator 0524\Virus17x 0524\Modified Samples\(4).exe - Win32/TrojanDownloader.Zurgop.DA 特洛伊木马 - 通过删除清除 [1]
C:\Users\Admin\Desktop\AVtest100\Virus17xObfuscator 0524\Virus17x 0524\Modified Samples\(5).exe - Win32/TrojanDownloader.Agent.DWX 特洛伊木马 - 通过删除清除 [1]
C:\Users\Admin\Desktop\AVtest100\Virus17xObfuscator 0524\Virus17x 0524\Modified Samples\(6).exe - MSIL/Injector.RGT 特洛伊木马 的变种 - 通过删除清除 [1]
C:\Users\Admin\Desktop\AVtest100\Virus17xObfuscator 0524\Virus17x 0524\Modified Samples\(7).exe - MSIL/Kryptik.NUS 特洛伊木马 的变种 - 通过删除清除 [1]
C:\Users\Admin\Desktop\AVtest100\Virus17xObfuscator 0524\Virus17x 0524\Modified Samples\(8).exe - MSIL/TrojanDownloader.Agent.EMP 特洛伊木马 的变种 - 通过删除清除 [1]
C:\Users\Admin\Desktop\AVtest100\Virus17xObfuscator 0524\Virus17x 0524\Modified Samples\(9).exe - Win32/GenKryptik.CAOK 特洛伊木马 的变种 - 通过删除清除 [1]
C:\Users\Admin\Desktop\AVtest100\Virus17xObfuscator 0524\Virus17x 0524\Samples\(1).exe - MSIL/Kryptik.NAS 特洛伊木马 的变种 - 通过删除清除 [1]
C:\Users\Admin\Desktop\AVtest100\Virus17xObfuscator 0524\Virus17x 0524\Samples\(10).exe - MSIL/Kryptik.NZA 特洛伊木马 的变种 - 通过删除清除 [1]
C:\Users\Admin\Desktop\AVtest100\Virus17xObfuscator 0524\Virus17x 0524\Samples\(11).exe - MSIL/Kryptik.NCF 特洛伊木马 的变种 - 通过删除清除 [1]
C:\Users\Admin\Desktop\AVtest100\Virus17xObfuscator 0524\Virus17x 0524\Samples\(12).exe - Win32/Kryptik.GHAR 特洛伊木马 的变种 - 通过删除清除 [1]
C:\Users\Admin\Desktop\AVtest100\Virus17xObfuscator 0524\Virus17x 0524\Samples\(13).exe - Win32/Kryptik.GHAR 特洛伊木马 的变种 - 通过删除清除 [1]
C:\Users\Admin\Desktop\AVtest100\Virus17xObfuscator 0524\Virus17x 0524\Samples\(14).exe - Win32/Kryptik.GHAL 特洛伊木马 的变种 - 通过删除清除 [1]
C:\Users\Admin\Desktop\AVtest100\Virus17xObfuscator 0524\Virus17x 0524\Samples\(15).exe - Win32/TrojanDownloader.TrueBot.G 特洛伊木马 - 通过删除清除 [1]
C:\Users\Admin\Desktop\AVtest100\Virus17xObfuscator 0524\Virus17x 0524\Samples\(16).exe > NSIS > Script.nsi - NSIS/TrojanDownloader.Agent.NXI 特洛伊木马 - 通过删除清除 [1]
C:\Users\Admin\Desktop\AVtest100\Virus17xObfuscator 0524\Virus17x 0524\Samples\(17).scr - Win32/Injector.DYEY 特洛伊木马 的变种 - 通过删除清除 [1]
C:\Users\Admin\Desktop\AVtest100\Virus17xObfuscator 0524\Virus17x 0524\Samples\(2).exe - Win32/Injector.DYEM 特洛伊木马 的变种 - 通过删除清除 [1]
C:\Users\Admin\Desktop\AVtest100\Virus17xObfuscator 0524\Virus17x 0524\Samples\(3).exe - Win32/Injector.DYEG 特洛伊木马 的变种 - 通过删除清除 [1]
C:\Users\Admin\Desktop\AVtest100\Virus17xObfuscator 0524\Virus17x 0524\Samples\(4).exe - Win32/TrojanDownloader.Zurgop.DA 特洛伊木马 - 通过删除清除 [1]
C:\Users\Admin\Desktop\AVtest100\Virus17xObfuscator 0524\Virus17x 0524\Samples\(5).exe - Win32/TrojanDownloader.Agent.DWX 特洛伊木马 - 通过删除清除 [1]
C:\Users\Admin\Desktop\AVtest100\Virus17xObfuscator 0524\Virus17x 0524\Samples\(6).exe - MSIL/Injector.RGT 特洛伊木马 的变种 - 通过删除清除 [1]
C:\Users\Admin\Desktop\AVtest100\Virus17xObfuscator 0524\Virus17x 0524\Samples\(7).exe - MSIL/Kryptik.NUS 特洛伊木马 的变种 - 通过删除清除 [1]
C:\Users\Admin\Desktop\AVtest100\Virus17xObfuscator 0524\Virus17x 0524\Samples\(8).exe - MSIL/TrojanDownloader.Agent.EMP 特洛伊木马 的变种 - 通过删除清除 [1]
C:\Users\Admin\Desktop\AVtest100\Virus17xObfuscator 0524\Virus17x 0524\Samples\(9).exe - Win32/GenKryptik.CAOK 特洛伊木马 的变种 - 通过删除清除 [1]
已扫描的对象数: 42
发现的威胁数: 33
已清除对象数: 33
完成时间: 10:05:56  总扫描时间: 47 秒 (00:00:47)

备注:
[1] 由于对象中仅包含病毒主体,因此已被删除。


Dr.Web CureIt! 简体中文绿色免费版---( Windows 7 Ultimate with SP1 简体中文旗舰版....):

-----------------------------------------------------------------------------
Start scanning
-----------------------------------------------------------------------------
Command line used:-rpcep:\pipe\10E9A1A83 -rpcpr:np

Limit the use of the computer resources to 100%
Instances used for this session: 10
Object(s) to scan:
- C:\Users\xfxnet2000\Desktop\MX Player Pro\175418360\145802370\479704092\AVTest100\Virus17x 0524


C:\Users\xfxnet2000\Desktop\MX Player Pro\175418360\145802370\479704092\AVTest100\Virus17x 0524\Modified Samples\(14).exe - infected with Trojan.KillProc.54838
C:\Users\xfxnet2000\Desktop\MX Player Pro\175418360\145802370\479704092\AVTest100\Virus17x 0524\Modified Samples\(14).exe - infected
C:\Users\xfxnet2000\Desktop\MX Player Pro\175418360\145802370\479704092\AVTest100\Virus17x 0524\Modified Samples\(13).exe - infected with Trojan.Siggen7.54574
C:\Users\xfxnet2000\Desktop\MX Player Pro\175418360\145802370\479704092\AVTest100\Virus17x 0524\Modified Samples\(13).exe - infected
C:\Users\xfxnet2000\Desktop\MX Player Pro\175418360\145802370\479704092\AVTest100\Virus17x 0524\Modified Samples\(16).exe - infected with Trojan.Encoder.25444
C:\Users\xfxnet2000\Desktop\MX Player Pro\175418360\145802370\479704092\AVTest100\Virus17x 0524\Modified Samples\(16).exe - infected
C:\Users\xfxnet2000\Desktop\MX Player Pro\175418360\145802370\479704092\AVTest100\Virus17x 0524\Modified Samples\(11).exe - infected with Trojan.Inject3.4015
C:\Users\xfxnet2000\Desktop\MX Player Pro\175418360\145802370\479704092\AVTest100\Virus17x 0524\Modified Samples\(11).exe - infected
C:\Users\xfxnet2000\Desktop\MX Player Pro\175418360\145802370\479704092\AVTest100\Virus17x 0524\Modified Samples\(12).exe - infected with Trojan.Emotet.207
C:\Users\xfxnet2000\Desktop\MX Player Pro\175418360\145802370\479704092\AVTest100\Virus17x 0524\Modified Samples\(12).exe - infected
C:\Users\xfxnet2000\Desktop\MX Player Pro\175418360\145802370\479704092\AVTest100\Virus17x 0524\Modified Samples\(2).exe - infected with Trojan.PWS.Stealer.23900
C:\Users\xfxnet2000\Desktop\MX Player Pro\175418360\145802370\479704092\AVTest100\Virus17x 0524\Modified Samples\(2).exe - infected
C:\Users\xfxnet2000\Desktop\MX Player Pro\175418360\145802370\479704092\AVTest100\Virus17x 0524\Modified Samples\(15).exe - infected with Trojan.DownLoader26.47321
C:\Users\xfxnet2000\Desktop\MX Player Pro\175418360\145802370\479704092\AVTest100\Virus17x 0524\Modified Samples\(15).exe - infected
C:\Users\xfxnet2000\Desktop\MX Player Pro\175418360\145802370\479704092\AVTest100\Virus17x 0524\Modified Samples\(7).exe - infected with Trojan.PWS.Stealer.23680
C:\Users\xfxnet2000\Desktop\MX Player Pro\175418360\145802370\479704092\AVTest100\Virus17x 0524\Modified Samples\(7).exe - infected
C:\Users\xfxnet2000\Desktop\MX Player Pro\175418360\145802370\479704092\AVTest100\Virus17x 0524\Modified Samples\(4).exe - Ok
C:\Users\xfxnet2000\Desktop\MX Player Pro\175418360\145802370\479704092\AVTest100\Virus17x 0524\Modified Samples\(10).exe - infected with Trojan.PWS.Multi.1654
C:\Users\xfxnet2000\Desktop\MX Player Pro\175418360\145802370\479704092\AVTest100\Virus17x 0524\Modified Samples\(10).exe - infected
C:\Users\xfxnet2000\Desktop\MX Player Pro\175418360\145802370\479704092\AVTest100\Virus17x 0524\Modified Samples\(9).exe - infected with Trojan.PWS.Stealer.23903
C:\Users\xfxnet2000\Desktop\MX Player Pro\175418360\145802370\479704092\AVTest100\Virus17x 0524\Modified Samples\(9).exe - infected
C:\Users\xfxnet2000\Desktop\MX Player Pro\175418360\145802370\479704092\AVTest100\Virus17x 0524\Modified Samples\(6).exe - infected with Trojan.PWS.Stealer.23680
C:\Users\xfxnet2000\Desktop\MX Player Pro\175418360\145802370\479704092\AVTest100\Virus17x 0524\Modified Samples\(6).exe - infected
C:\Users\xfxnet2000\Desktop\MX Player Pro\175418360\145802370\479704092\AVTest100\Virus17x 0524\Samples\(10).exe - infected with Trojan.PWS.Multi.1654
C:\Users\xfxnet2000\Desktop\MX Player Pro\175418360\145802370\479704092\AVTest100\Virus17x 0524\Samples\(10).exe - infected
C:\Users\xfxnet2000\Desktop\MX Player Pro\175418360\145802370\479704092\AVTest100\Virus17x 0524\Samples\(12).exe - infected with Trojan.Emotet.207
C:\Users\xfxnet2000\Desktop\MX Player Pro\175418360\145802370\479704092\AVTest100\Virus17x 0524\Samples\(12).exe - infected
>C:\Users\xfxnet2000\Desktop\MX Player Pro\175418360\145802370\479704092\AVTest100\Virus17x 0524\Modified Samples\(8).exe is NET container
C:\Users\xfxnet2000\Desktop\MX Player Pro\175418360\145802370\479704092\AVTest100\Virus17x 0524\Modified Samples\(8).exe - container
C:\Users\xfxnet2000\Desktop\MX Player Pro\175418360\145802370\479704092\AVTest100\Virus17x 0524\Samples\(15).exe - infected with Trojan.DownLoader26.47321
C:\Users\xfxnet2000\Desktop\MX Player Pro\175418360\145802370\479704092\AVTest100\Virus17x 0524\Samples\(15).exe - infected
C:\Users\xfxnet2000\Desktop\MX Player Pro\175418360\145802370\479704092\AVTest100\Virus17x 0524\Samples\(16).exe - infected with Trojan.Encoder.25444
C:\Users\xfxnet2000\Desktop\MX Player Pro\175418360\145802370\479704092\AVTest100\Virus17x 0524\Samples\(16).exe - infected
C:\Users\xfxnet2000\Desktop\MX Player Pro\175418360\145802370\479704092\AVTest100\Virus17x 0524\Samples\(13).exe - infected with Trojan.Siggen7.54574
C:\Users\xfxnet2000\Desktop\MX Player Pro\175418360\145802370\479704092\AVTest100\Virus17x 0524\Samples\(13).exe - infected
C:\Users\xfxnet2000\Desktop\MX Player Pro\175418360\145802370\479704092\AVTest100\Virus17x 0524\Modified Samples\(5).exe - Ok
C:\Users\xfxnet2000\Desktop\MX Player Pro\175418360\145802370\479704092\AVTest100\Virus17x 0524\Samples\(11).exe - infected with Trojan.Inject3.4015
C:\Users\xfxnet2000\Desktop\MX Player Pro\175418360\145802370\479704092\AVTest100\Virus17x 0524\Samples\(11).exe - infected
C:\Users\xfxnet2000\Desktop\MX Player Pro\175418360\145802370\479704092\AVTest100\Virus17x 0524\Samples\(14).exe - infected with Trojan.KillProc.54838
C:\Users\xfxnet2000\Desktop\MX Player Pro\175418360\145802370\479704092\AVTest100\Virus17x 0524\Samples\(14).exe - infected
C:\Users\xfxnet2000\Desktop\MX Player Pro\175418360\145802370\479704092\AVTest100\Virus17x 0524\Samples\(5).exe - Ok
>C:\Users\xfxnet2000\Desktop\MX Player Pro\175418360\145802370\479704092\AVTest100\Virus17x 0524\Modified Samples\(3).exe - packed by ASPROTECT
C:\Users\xfxnet2000\Desktop\MX Player Pro\175418360\145802370\479704092\AVTest100\Virus17x 0524\Samples\(2).exe - infected with Trojan.PWS.Stealer.23900
C:\Users\xfxnet2000\Desktop\MX Player Pro\175418360\145802370\479704092\AVTest100\Virus17x 0524\Samples\(2).exe - infected
C:\Users\xfxnet2000\Desktop\MX Player Pro\175418360\145802370\479704092\AVTest100\Virus17x 0524\Samples\(6).exe - infected with Trojan.PWS.Stealer.23680
C:\Users\xfxnet2000\Desktop\MX Player Pro\175418360\145802370\479704092\AVTest100\Virus17x 0524\Samples\(6).exe - infected
C:\Users\xfxnet2000\Desktop\MX Player Pro\175418360\145802370\479704092\AVTest100\Virus17x 0524\Modified Samples\(17).scr - infected with Trojan.PWS.Stealer.21377
C:\Users\xfxnet2000\Desktop\MX Player Pro\175418360\145802370\479704092\AVTest100\Virus17x 0524\Modified Samples\(17).scr - infected
C:\Users\xfxnet2000\Desktop\MX Player Pro\175418360\145802370\479704092\AVTest100\Virus17x 0524\Samples\(9).exe - infected with Trojan.PWS.Stealer.23903
C:\Users\xfxnet2000\Desktop\MX Player Pro\175418360\145802370\479704092\AVTest100\Virus17x 0524\Samples\(9).exe - infected
C:\Users\xfxnet2000\Desktop\MX Player Pro\175418360\145802370\479704092\AVTest100\Virus17x 0524\Samples\(7).exe - infected with Trojan.PWS.Stealer.23680
C:\Users\xfxnet2000\Desktop\MX Player Pro\175418360\145802370\479704092\AVTest100\Virus17x 0524\Samples\(7).exe - infected
>C:\Users\xfxnet2000\Desktop\MX Player Pro\175418360\145802370\479704092\AVTest100\Virus17x 0524\Samples\(8).exe is NET container
C:\Users\xfxnet2000\Desktop\MX Player Pro\175418360\145802370\479704092\AVTest100\Virus17x 0524\Samples\(8).exe - container
C:\Users\xfxnet2000\Desktop\MX Player Pro\175418360\145802370\479704092\AVTest100\Virus17x 0524\Samples\(1).exe - infected with Trojan.DownLoader26.47335
C:\Users\xfxnet2000\Desktop\MX Player Pro\175418360\145802370\479704092\AVTest100\Virus17x 0524\Samples\(1).exe - infected
C:\Users\xfxnet2000\Desktop\MX Player Pro\175418360\145802370\479704092\AVTest100\Virus17x 0524\Modified Samples\(1).exe - infected with Trojan.DownLoader26.47335
C:\Users\xfxnet2000\Desktop\MX Player Pro\175418360\145802370\479704092\AVTest100\Virus17x 0524\Modified Samples\(1).exe - infected
>>C:\Users\xfxnet2000\Desktop\MX Player Pro\175418360\145802370\479704092\AVTest100\Virus17x 0524\Modified Samples\(3).exe - packed by FLY-CODE
C:\Users\xfxnet2000\Desktop\MX Player Pro\175418360\145802370\479704092\AVTest100\Virus17x 0524\Samples\(4).exe - Ok
>C:\Users\xfxnet2000\Desktop\MX Player Pro\175418360\145802370\479704092\AVTest100\Virus17x 0524\Samples\(3).exe - packed by ASPROTECT
C:\Users\xfxnet2000\Desktop\MX Player Pro\175418360\145802370\479704092\AVTest100\Virus17x 0524\Samples\(17).scr - infected with Trojan.PWS.Stealer.21377
C:\Users\xfxnet2000\Desktop\MX Player Pro\175418360\145802370\479704092\AVTest100\Virus17x 0524\Samples\(17).scr - infected
C:\Users\xfxnet2000\Desktop\MX Player Pro\175418360\145802370\479704092\AVTest100\Virus17x 0524\Modified Samples\(3).exe - Ok
C:\Users\xfxnet2000\Desktop\MX Player Pro\175418360\145802370\479704092\AVTest100\Virus17x 0524\Samples\(3).exe - infected with Trojan.PWS.Stealer.23680
C:\Users\xfxnet2000\Desktop\MX Player Pro\175418360\145802370\479704092\AVTest100\Virus17x 0524\Samples\(3).exe - infected

Total 18341730 bytes in 34 files scanned
Total 7 files are clean
Total 27 files are infected
Scan time is 00:00:04.449


火绒安全---( Windows 7 Ultimate with SP1 简体中文旗舰版....):部分未知文件已发送到seclab@huorong.cn,等处理中。。。

病毒库:2018-05-25 16:08
开始时间:2018-05-26 09:39
总计用时:00:00:13
扫描对象:75个
扫描文件:34个
发现风险:33个
已处理风险:0个
发现系统修复项:0个
处理系统修复项:0个

病毒详情

风险路径:C:\Users\xfxnet2000\Desktop\MX Player Pro\175418360\145802370\479704092\AVTest100\Virus17x 0524\Modified Samples\(1).exe, 病毒名:Trojan/Generic!646721801A20F125, 病毒ID:[646721801a20f125], 处理结果:已忽略
风险路径:C:\Users\xfxnet2000\Desktop\MX Player Pro\175418360\145802370\479704092\AVTest100\Virus17x 0524\Modified Samples\(13).exe, 病毒名:Trojan/Generic!91824BEF8D9A2155, 病毒ID:[91824bef8d9a2155], 处理结果:已忽略
风险路径:C:\Users\xfxnet2000\Desktop\MX Player Pro\175418360\145802370\479704092\AVTest100\Virus17x 0524\Modified Samples\(11).exe, 病毒名:Trojan/Generic!23E58F60575A484B, 病毒ID:[23e58f60575a484b], 处理结果:已忽略
风险路径:C:\Users\xfxnet2000\Desktop\MX Player Pro\175418360\145802370\479704092\AVTest100\Virus17x 0524\Modified Samples\(12).exe, 病毒名:Trojan/Generic!C1A3EB61B8CDEB4C, 病毒ID:[c1a3eb61b8cdeb4c], 处理结果:已忽略
风险路径:C:\Users\xfxnet2000\Desktop\MX Player Pro\175418360\145802370\479704092\AVTest100\Virus17x 0524\Modified Samples\(10).exe, 病毒名:Trojan/Generic!707820FDB6BAE7C0, 病毒ID:[707820fdb6bae7c0], 处理结果:已忽略
风险路径:C:\Users\xfxnet2000\Desktop\MX Player Pro\175418360\145802370\479704092\AVTest100\Virus17x 0524\Modified Samples\(14).exe, 病毒名:Trojan/Generic!64F73B360288C1D7, 病毒ID:[64f73b360288c1d7], 处理结果:已忽略
风险路径:C:\Users\xfxnet2000\Desktop\MX Player Pro\175418360\145802370\479704092\AVTest100\Virus17x 0524\Modified Samples\(15).exe, 病毒名:Trojan/Generic!1BEF00FB1D7EB8C1, 病毒ID:[1bef00fb1d7eb8c1], 处理结果:已忽略
风险路径:C:\Users\xfxnet2000\Desktop\MX Player Pro\175418360\145802370\479704092\AVTest100\Virus17x 0524\Modified Samples\(16).exe >> [NSIS].nsi, 病毒名:TrojanDownloader/Agent.qz, 病毒ID:[29651a9bf784b0b4], 处理结果:已忽略
风险路径:C:\Users\xfxnet2000\Desktop\MX Player Pro\175418360\145802370\479704092\AVTest100\Virus17x 0524\Modified Samples\(2).exe, 病毒名:Trojan/Generic!D14C51541F30B781, 病毒ID:[d14c51541f30b781], 处理结果:已忽略
风险路径:C:\Users\xfxnet2000\Desktop\MX Player Pro\175418360\145802370\479704092\AVTest100\Virus17x 0524\Modified Samples\(4).exe, 病毒名:Trojan/Generic!B7365022F89CF727, 病毒ID:[b7365022f89cf727], 处理结果:已忽略
风险路径:C:\Users\xfxnet2000\Desktop\MX Player Pro\175418360\145802370\479704092\AVTest100\Virus17x 0524\Modified Samples\(6).exe, 病毒名:Trojan/MSIL.Obfuscated.m, 病毒ID:[c0f9041cf1b3d32e], 处理结果:已忽略
风险路径:C:\Users\xfxnet2000\Desktop\MX Player Pro\175418360\145802370\479704092\AVTest100\Virus17x 0524\Modified Samples\(7).exe, 病毒名:Trojan/Generic!BFD32EB49F55238D, 病毒ID:[bfd32eb49f55238d], 处理结果:已忽略
风险路径:C:\Users\xfxnet2000\Desktop\MX Player Pro\175418360\145802370\479704092\AVTest100\Virus17x 0524\Modified Samples\(17).scr, 病毒名:Trojan/Generic!AD851B2230AA2D2B, 病毒ID:[ad851b2230aa2d2b], 处理结果:已忽略
风险路径:C:\Users\xfxnet2000\Desktop\MX Player Pro\175418360\145802370\479704092\AVTest100\Virus17x 0524\Modified Samples\(9).exe, 病毒名:Trojan/Generic!6AB8EA8CDFF7603B, 病毒ID:[6ab8ea8cdff7603b], 处理结果:已忽略
风险路径:C:\Users\xfxnet2000\Desktop\MX Player Pro\175418360\145802370\479704092\AVTest100\Virus17x 0524\Modified Samples\(8).exe, 病毒名:Trojan/Generic!3CE7D11398BBB3E4, 病毒ID:[3ce7d11398bbb3e4], 处理结果:已忽略
风险路径:C:\Users\xfxnet2000\Desktop\MX Player Pro\175418360\145802370\479704092\AVTest100\Virus17x 0524\Samples\(10).exe, 病毒名:Trojan/Generic!669B62D61F43C646, 病毒ID:[669b62d61f43c646], 处理结果:已忽略
风险路径:C:\Users\xfxnet2000\Desktop\MX Player Pro\175418360\145802370\479704092\AVTest100\Virus17x 0524\Samples\(11).exe, 病毒名:Trojan/Generic!338F0CF58EF0E453, 病毒ID:[338f0cf58ef0e453], 处理结果:已忽略
风险路径:C:\Users\xfxnet2000\Desktop\MX Player Pro\175418360\145802370\479704092\AVTest100\Virus17x 0524\Samples\(13).exe, 病毒名:Trojan/Generic!207E6EC083F676B0, 病毒ID:[207e6ec083f676b0], 处理结果:已忽略
风险路径:C:\Users\xfxnet2000\Desktop\MX Player Pro\175418360\145802370\479704092\AVTest100\Virus17x 0524\Samples\(12).exe, 病毒名:Trojan/Generic!4D4E9EADED4AF0B2, 病毒ID:[4d4e9eaded4af0b2], 处理结果:已忽略
风险路径:C:\Users\xfxnet2000\Desktop\MX Player Pro\175418360\145802370\479704092\AVTest100\Virus17x 0524\Samples\(14).exe, 病毒名:Trojan/Generic!CD88C4AE78D6D0FD, 病毒ID:[cd88c4ae78d6d0fd], 处理结果:已忽略
风险路径:C:\Users\xfxnet2000\Desktop\MX Player Pro\175418360\145802370\479704092\AVTest100\Virus17x 0524\Samples\(15).exe, 病毒名:Trojan/Generic!0D888108DCA53FAE, 病毒ID:[d888108dca53fae], 处理结果:已忽略
风险路径:C:\Users\xfxnet2000\Desktop\MX Player Pro\175418360\145802370\479704092\AVTest100\Virus17x 0524\Samples\(1).exe, 病毒名:Trojan/Generic!8B8D4F8AEA8E77B0, 病毒ID:[8b8d4f8aea8e77b0], 处理结果:已忽略
风险路径:C:\Users\xfxnet2000\Desktop\MX Player Pro\175418360\145802370\479704092\AVTest100\Virus17x 0524\Samples\(16).exe >> [NSIS].nsi, 病毒名:TrojanDownloader/Agent.qz, 病毒ID:[29651a9bf784b0b4], 处理结果:已忽略
风险路径:C:\Users\xfxnet2000\Desktop\MX Player Pro\175418360\145802370\479704092\AVTest100\Virus17x 0524\Samples\(2).exe, 病毒名:Trojan/Generic!76E7FDDB993AA259, 病毒ID:[76e7fddb993aa259], 处理结果:已忽略
风险路径:C:\Users\xfxnet2000\Desktop\MX Player Pro\175418360\145802370\479704092\AVTest100\Virus17x 0524\Samples\(3).exe, 病毒名:Trojan/Generic!E5FBA714F6135FBF, 病毒ID:[e5fba714f6135fbf], 处理结果:已忽略
风险路径:C:\Users\xfxnet2000\Desktop\MX Player Pro\175418360\145802370\479704092\AVTest100\Virus17x 0524\Samples\(17).scr, 病毒名:Trojan/Generic!C7C9796873EDAED8, 病毒ID:[c7c9796873edaed8], 处理结果:已忽略
风险路径:C:\Users\xfxnet2000\Desktop\MX Player Pro\175418360\145802370\479704092\AVTest100\Virus17x 0524\Samples\(4).exe, 病毒名:Trojan/Generic!9CA0137E70956557, 病毒ID:[9ca0137e70956557], 处理结果:已忽略
风险路径:C:\Users\xfxnet2000\Desktop\MX Player Pro\175418360\145802370\479704092\AVTest100\Virus17x 0524\Samples\(6).exe, 病毒名:Trojan/MSIL.Obfuscated.m, 病毒ID:[c0f9041cf1b3d32e], 处理结果:已忽略
风险路径:C:\Users\xfxnet2000\Desktop\MX Player Pro\175418360\145802370\479704092\AVTest100\Virus17x 0524\Samples\(7).exe, 病毒名:Trojan/Generic!190859195661BA27, 病毒ID:[190859195661ba27], 处理结果:已忽略
风险路径:C:\Users\xfxnet2000\Desktop\MX Player Pro\175418360\145802370\479704092\AVTest100\Virus17x 0524\Samples\(9).exe, 病毒名:Trojan/Generic!877EBD8558CBBF2C, 病毒ID:[877ebd8558cbbf2c], 处理结果:已忽略
风险路径:C:\Users\xfxnet2000\Desktop\MX Player Pro\175418360\145802370\479704092\AVTest100\Virus17x 0524\Samples\(8).exe, 病毒名:Trojan/Generic!B4150A2B4FB4578D, 病毒ID:[b4150a2b4fb4578d], 处理结果:已忽略
风险路径:C:\Users\xfxnet2000\Desktop\MX Player Pro\175418360\145802370\479704092\AVTest100\Virus17x 0524\Modified Samples\(5).exe, 病毒名:HVM:VirTool/Obfuscator.gen!A, 病毒ID:[b27d4294cde6a1ec], 处理结果:已忽略
风险路径:C:\Users\xfxnet2000\Desktop\MX Player Pro\175418360\145802370\479704092\AVTest100\Virus17x 0524\Samples\(5).exe, 病毒名:HVM:VirTool/Obfuscator.gen!A, 病毒ID:[b27d4294cde6a1ec], 处理结果:已忽略

文件名称: C:\Users\xfxnet2000\Desktop\MX Player Pro\175418360\145802370\479704092\AVTest100\Virus17x 0524.rar
文件大小: 8.49 MB (8,905,303 字节)
修改时间: 2018年05月26日,09:38:27
MD5: 0DBC42E41294712362613F014B5F842B
SHA1: 58C1053BAB631F5572A5F580F520F72482C4D1DB
SHA256: 2A876FA7706EF75BAC03994335D64519ABC168EE2E3A8430F28A9CF31E355E2C
SHA512: 48C921F3141E9F6ED470DF99AB2F5D52182103BB101196D040F7893717B7172649F9AC25F766AE3ED9596A8F67F012EF210326BF19BFE2415D7282407F1FA5B8
CRC32: 86AB9F8D
计算时间: 0.23s

您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2025-6-26 02:19 , Processed in 0.094846 second(s), 14 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表